CVE-2021-39198 – OroCRM is an open source Client Relationship Management (CRM) application. Affected versio …

Vuln ID: CVE-2021-39198

Published:  2021-11-19  22:15:07Z

Description: OroCRM is an open source Client Relationship Management (CRM) application. Affected versions we found to suffer from a vulnerability which could an attacker is able to disqualify any Lead with a Cross-Site Request Forgery (CSRF) attack. There are no workarounds that address this vulnerability and all users are advised to update their package.

Source: NVD.NIST.GOV

 


Date:

Categories:

NVD

Tags: